CVE-2022-48554
- EPSS 0.02%
- Published 22.08.2023 19:16:31
- Last modified 21.11.2024 07:33:30
File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project.
CVE-2022-48560
- EPSS 0.19%
- Published 22.08.2023 19:16:31
- Last modified 21.11.2024 07:33:30
A use-after-free exists in Python through 3.9 via heappushpop in heapq.
CVE-2022-44729
- EPSS 0.12%
- Published 22.08.2023 19:16:29
- Last modified 13.02.2025 17:15:46
Server-Side Request Forgery (SSRF) vulnerability in Apache Software Foundation Apache XML Graphics Batik.This issue affects Apache XML Graphics Batik: 1.16. On version 1.16, a malicious SVG could trigger loading external resources by default, causin...
CVE-2022-44730
- EPSS 0.29%
- Published 22.08.2023 19:16:29
- Last modified 13.02.2025 17:15:47
Server-Side Request Forgery (SSRF) vulnerability in Apache Software Foundation Apache XML Graphics Batik.This issue affects Apache XML Graphics Batik: 1.16. A malicious SVG can probe user profile / data and send it directly as parameter to a URL.
CVE-2022-37050
- EPSS 0.07%
- Published 22.08.2023 19:16:23
- Last modified 02.07.2025 15:15:23
In Poppler 22.07.0, PDFDoc::savePageAs in PDFDoc.c callows attackers to cause a denial-of-service (application crashes with SIGABRT) by crafting a PDF file in which the xref data structure is mishandled in getCatalog processing. Note that this vulner...
CVE-2022-37051
- EPSS 0.04%
- Published 22.08.2023 19:16:23
- Last modified 21.11.2024 07:14:21
An issue was discovered in Poppler 22.07.0. There is a reachable abort which leads to denial of service because the main function in pdfunite.cc lacks a stream check before saving an embedded file.
CVE-2020-35357
- EPSS 0.2%
- Published 22.08.2023 19:16:20
- Last modified 07.12.2024 21:15:16
A buffer overflow can occur when calculating the quantile value using the Statistics Library of GSL (GNU Scientific Library), versions 2.5 and 2.6. Processing a maliciously crafted input data for gsl_stats_quantile_from_sorted_data of the library may...
CVE-2020-22217
- EPSS 0.25%
- Published 22.08.2023 19:16:19
- Last modified 21.11.2024 05:13:11
Buffer overflow vulnerability in c-ares before 1_16_1 thru 1_17_0 via function ares_parse_soa_reply in ares_parse_soa_reply.c.
CVE-2020-23804
- EPSS 0.59%
- Published 22.08.2023 19:16:19
- Last modified 21.11.2024 05:14:05
Uncontrolled Recursion in pdfinfo, and pdftops in poppler 0.89.0 allows remote attackers to cause a denial of service via crafted input.
CVE-2020-19189
- EPSS 2.55%
- Published 22.08.2023 19:16:01
- Last modified 21.11.2024 05:09:00
Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.